Privacy Policy
Last updated: 14 August 2026
This policy explains what personal data MyGlyde collects, why, and your rights. The data controller for the personal data described here is Aethus Ltd trading as MyGlyde, registered in England and Wales (company number 17067424), Independence House, 14a Nelson Street, Southend-On-Sea, England, SS1 1EF. We aim to collect as little as possible.
Our privacy-first design
MyGlyde is built so that cognitive and behavioural-rhythm signals are processed on your device only and are never sent to or stored on our servers. This includes things like tab-away/idle detection, focus telemetry and live-room co-presence. There is deliberately no server-side record of these signals. Where organisations or coaches see anything, it is only opt-in, aggregate, non-cognitive counts — never your task content.
What we store
- Account data: email address and display name (via our authentication provider, Supabase).
- Your content: tasks, notes, goals, schedules and settings you create, so the Service works for you.
- Product data: streaks, completion counts and reward credits used to run features you can see.
- Billing data: subscription status and a Stripe customer reference. Card details are handled by Stripe — we never see or store your full card number.
AI features
Some features (task breakdown, estimates, strategy planning) send the relevant text you provide to our AI provider (OpenAI) to generate a response. We don’t send your cognitive signals, and this text is not used to train third-party models under our configuration.
Cookies & analytics
We use a small number of first-party cookies: to keep you signed in, to remember your theme, if you arrive via a referral link to attribute your signup, and — briefly — a cookie that remembers which version of our homepage you first saw so we can compare them. We don’t use advertising cookies or any cross-site tracking, which is why there’s no cookie banner. For usage statistics we run cookieless analytics (Umami), self-hosted by us on our own EU infrastructure — anonymous, aggregate page views only; nothing reaches a third party.
Where your data lives
Your account data and content are stored with Supabase in the EU (AWS Ireland), and the app itself runs on our own servers in the EU (Frankfurt, Germany). Email is sent via Mailgun’s EU region. Payments are processed by Stripe. AI requests are processed by OpenAI in the United States — only the task text you submit, never your cognitive signals. The full list, with regions, is at /legal/sub-processors.
Sharing
We share data only with the processors that run the Service: Supabase (database & auth), Stripe (payments), OpenAI (AI features), Mailgun (email), Sentry (error monitoring) and our hosting provider — listed with regions at /legal/sub-processors. We don’t sell your data.
Retention
We keep your data while your account is active. You can delete your account, after which we delete or anonymise your personal data except where we must keep records (e.g. for tax/payments).
Your rights
Under UK GDPR you can access, correct, export or delete your personal data, and object to or restrict certain processing. Export a copy of your data or delete your account any time from Settings → Your data, or contact privacy@myglyde.com. You can also complain to the UK ICO.
Contact
Privacy questions: privacy@myglyde.com.